Administrator Guide

When enabled, FileVault is used to encrypt the System Volume including Fusion
Drives, based on the Volumes Targeted for Encryption policy setting.
Mac Encryption > Mac Global Settings
Volumes Targeted for Encryption System Volume Only or All Fixed Volumes
System Volume Only secures only the currently running system volume.
All Fixed Volumes secures all Mac OS Extended Volumes on all fixed disks, along
with the currently running system volume.
3. For descriptions of all the policies, see AdminHelp which is available from the Management Console. To locate a specific
policy in AdminHelp:
a. Click the Search icon.
b. In Search, enter the policy name with quotes.
c. Click the topic link that displays. The policy name that you entered in quotes is highlighted in the topic.
4. Click the System Volumes tab to view the status of the volumes targeted for encryption.
State Description
Excluded The volume is excluded from encryption. This applies to unencrypted volumes when
encryption is disabled, external volumes, volumes with formats other than Mac OS X
Extended (Journaled), and non-system volumes when the Volumes Targeted for
Encryption policy is set to System Volume Only.
Preparing volume for encryption The client software is currently initiating the encryption process for the volume but
has not begun the encryption sweep.
Volume cannot be resized The client software cannot start encryption because the Volume cannot be resized
appropriately. After receiving this message, contact Dell ProSupport and provide the
log files.
Needs repair before encryption
begins
The volume failed Disk Utility verification.
To repair a volume, follow the instructions in Apple Support article HT1782 (http://
support.apple.com/kb/HT1782).
Encryption preparation complete.
Pending restart
Encryption begins after restart.
Encryption policy conflict The disk cannot be brought under policy because it is encrypted with an incorrect
setting. See Encrypt Using FileVault for Mac.
Waiting to escrow keys with Dell
Server
To ensure all encrypted data is recoverable, the client does not begin the encryption
process until all encryption keys are successfully escrowed to the Dell Server. The
client polls for Security Server connectivity while in this state until the keys are
escrowed.
Encrypting An encryption sweep is in progress.
Encrypted The encryption sweep is complete.
Decrypting A decryption sweep is in progress.
Restoring to original state The client software is restoring the partition scheme to its original state at the end of
the Decrypting process. This is the decryption sweep equivalent of the Preparing
volume for encryption state.
Decrypted The decryption sweep is complete.
Tasks for the Encryption Client 15